PHPMailer before 6.5.0 on Windows allows remote code execution if lang_path is untrusted data and has a UNC pathname.
References
Configurations
History
No history.
Information
Published : 2021-06-16 18:15
Updated : 2026-06-17 03:56
NVD link : CVE-2021-34551
Mitre link : CVE-2021-34551
CVE.ORG link : CVE-2021-34551
JSON object : View
Products Affected
phpmailer_project
- phpmailer
microsoft
- windows
fedoraproject
- fedora
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
